There will be quite a few differences in the 2.0 but the underlying fundamentals are the same.

In the case of NAT reflection, it's still preferred to use split DNS instead of relying on reflection. Your internal devices should be talking directly to the internal IPs of the services, and not using the public IPs. There is more info on the doc wiki (check the link in my sig).